[CLSA-2026:1777939234] libssh: Fix of CVE-2026-0966
Type:
security
Severity:
Important
Release date:
2026-05-05 00:00:46 UTC
Description:
- CVE-2026-0966: fix heap buffer underflow in ssh_get_hexa() on NULL or zero-length input, remotely reachable via GSSAPI authentication logging
Updated packages:
  • libssh-0.9.4-3.el8.tuxcare.els9.i686.rpm
    sha:34c48928a78d7c8cca1f79ace2f624c42880b3ff5cdb005097579d998c8e4383
  • libssh-0.9.4-3.el8.tuxcare.els9.x86_64.rpm
    sha:92482acddc62fda1e7097b5197b122c15ea438da7886a3ad412a3c0da454f513
  • libssh-config-0.9.4-3.el8.tuxcare.els9.noarch.rpm
    sha:fc52a922652616e71a8c4e1e9fd0ad3ec890ec29867731501ca15de62f245dbf
  • libssh-devel-0.9.4-3.el8.tuxcare.els9.i686.rpm
    sha:3bfdfb6c64aa91d40af5c8c9414e8e4ab16ec809717ab653d2cc2526a990ff03
  • libssh-devel-0.9.4-3.el8.tuxcare.els9.x86_64.rpm
    sha:40602569eb03286b3b1b97b8a324ed377fa1d90570d4255780ad35a0e5ae432f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.